Hacking TelkomSpeedy Account

On September 8, 2007, in Tutorials, by Zoiz

Before you start reading, I’ll tell you that this trick is Patched. It’s up to you whether you wanna carry on or just stop here :)

A new system always get some fundamental problems, and so is TelkomSpeedy. This trick is damn easy one, but once you learn this, you can owned most of the TelkomSpeedy users out there, even now. But as I said, it’s patched. Although we can still gain access to some routers out there, but we can’t use their TelkomSpeedy account even we got their username and password.

Here the story goes :

Download any TCP/IP Port Scanner. And do a scan of course from some IP range like 125.162.55.1 to 125.162.55.254 (as long as it’s TelkomSpeedy IP Range). And you’ll get the result :D Note down all IPs with port 80 opened. And type down their IP address on your web browser and hit enter.

If you are prompted with a login pop up, you may try to input the combination below :

Username : admin; user; manager

Password : admin; manager, password, user, 123456, 12345, 54321

Here is the default password list for most of the popular router out there.

http://www.phenoelit-us.org/dpl/dpl.html

Try the password combination. Once you are in, we are almost done :P First thing to do is to find the WAN setting. It might be somewhere in Advanced tab. Differ for each router. Find it! Inside the WAN setting, there will be PPP configuration. Click on it, the username and password are stored there.

Usually the password is masked. To see it, you may view the page source, and find the password textbox. Or u can use this script javascript:alert(document.forms[0].password.value).

Jobs done!! Easy task isn’t it? Now you can login using their accounts. Don’t believe me? Just try it. :)

Hacking is not about true skills, but it’s all about ideas :)

Thanks.

Tagged with:  

15 Responses to “Hacking TelkomSpeedy Account”

  1. CalvinLimuel says:

    akhirnya…. yang ditunggu-tunggu datang juga :D

  2. arie says:

    man , that’s kewl :) , scary enough . hehehe

  3. Zoiz says:

    hehe from this trick..you can even do more scary thing :P but that one is tricky i can’t post it here :D

  4. JKR says:

    yeah..gw suka gaya loe bro….

    :D

  5. rUsh_mAn says:

    Hallo Zoiz can’t you write tut for hacking BRAS speedy? or trick to steal bandwith :)

  6. Zoiz says:

    Sorry..What do you mean by BRAS Speedy?

  7. Mpoes says:

    Om Zoiz.. ditunggu artikel untuk Hack Internet Cable.. maju terus om Zoiz.. :)

  8. Zoiz says:

    yah, ada waktu akan saya nulis ;) sekarang lagi sibuk2an bbrp project dan buku ^^

  9. ferdhie says:

    and if none of the password in the password list match? what should we do?

  10. Zoiz says:

    Easy. Find another target. Or you can read my book (Zero Knowledge Password in any Gramedia Book Stores) on how to get passwords with all approaches. Or you can even hack their system and list out their database content using the SQL Injection Vulnerability on their site that I provided on my blog. Feel free to surf.

  11. [...] problem lies within a password, a default password. Yes, the default password problem do exists on custom CMS! If you are still confuse of what I am talking about, I’ll give a [...]

  12. cihui says:

    Jaman gini kok pake bayar bulanan. Internetan gratis fren hidup lagi, bro. bisa download dan browsing sepuasnya tanpa isi pulsa. Mo 24jam kek mo download ratusan Giga kek, ya terserah anda… yang jelas ga pakai port 554 lagi. Tertarik? Email: fren_gratis@telkom.net

  13. rian says:

    trik ini udah gak bisa lagi bos. cz qw udah (lama) baca buku “Zero Knowledge Password ” karangan th0r alias “anselmus ricky” alias temennya “Zoiz”. gw udah praktekin, Password n username emang dapet, tapi gak bisa digunakan (log in) bos. cz speedy sekarang gak kayak speedy dulu. kl sekarang, walaupun udah dapet username n password tetao gak bisa log in, karena speedy dah nerapin security apabila nomer telpon beda (meskipun username n password dah dapet) akses ditolak.

    Jadinya ntu password cuma bisa ngecek pemakaian doank, tagihannya berapa dll. ya, kl usil, bisa juga sich change password, tapi ama aja. tetep gak bisa digunakan.

    ************************

    Zois, da solusi lain gak (buat ngerubah no telp rumah ^-^)
    atau ada ADSL baru untuk jadi target.

  14. Zoiz says:

    @rian

    Baca paragraph pertama :)

    “Before you start reading, I’ll tell you that this trick is Patched. It’s up to you whether you wanna carry on or just stop here :)

    1 Bulan / more sebelum saya post artikel hacking telkomspeedy account, teknik ini sudah tidak bisa digunakan lagi, alias seperti kata Anda bisa mendapatkan username & password tetapi tidak bisa pakai account tersebut karena Telkom telah melakukan sedikit perubahan pada sistem mereka.

  15. tommy says:

    i have stolen too many account..

    but when i try to use the stolen account.. it’s doesnt workk..

    there was confirmation message like this : Error 691 : Access denied because the username and/or password are invalid in the domain.

    does anyone have more trick… ?????

Leave a Reply